1

Sumo Logic Jobs (NOW HIRING)

Prior experience with Sumo Logic, Defender, Google Chronicle, and/or Azure Sentinel is a strong plus. * Industry Security Certifications (Security+, CySA+, GSEC) * Experience or working knowledge of ...

Hands-on experience with at least two SIEM platforms (e.g., Splunk, Microsoft Sentinel, ELK, LogRhythm, or Sumo Logic) in a production detection and response environment. * Experience independently ...

DevOps Engineer

Colorado Springs, CO · On-site +1

$140K - $170K/yr

Experience with tools such as Nexus, GitLab, Okta, NeuVector, Kyverno, Sumo Logic, monitoring platforms, alerting systems, or Web Application Firewalls (WAFs) is a plus. * You thrive in remote ...

DevOps Engineer

Clearwater, FL · On-site

$48.50 - $66.50/hr

... Datadog, Sumo Logic, ELK). • Proven ability to diagnose and resolve time-sensitive, critical production issues. • Experience operating common middleware and web stacks (e.g., Apache, NGINX ...

DevOps Engineer

Westlake, TX · On-site

$50.75 - $69.50/hr

Proficiency with monitoring/observability and log aggregation tools (e.g., New Relic, CloudWatch, Datadog, Sumo Logic, ELK). * Proven ability to diagnose and resolve time-sensitive, critical ...

DevOps Engineer

Westlake, TX · On-site

$50.75 - $69.50/hr

Proficiency with monitoring/observability and log aggregation tools (e.g., New Relic, CloudWatch, Datadog, Sumo Logic, ELK). * Proven ability to diagnose and resolve time-sensitive, critical ...

Regional Sales Director

New York, NY · Remote

$350K - $380K/yr

Sumo Logic * Palo Alto Networks * Wiz * SentinelOne * Microsoft Security * Google Cloud * AWS Security * Netskope * Rubrik * Varonis * Zscaler What We Offer * $350K-$380K On-Target Earnings

DevOps Engineer

Clearwater, FL · On-site

$48.50 - $66.50/hr

Proficiency with monitoring/observability and log aggregation tools (e.g., New Relic, CloudWatch, Datadog, Sumo Logic, ELK). * Proven ability to diagnose and resolve time-sensitive, critical ...

Proficiency with EDR and SIEM platforms, and familiarity with a modern enterprise stack such as Okta, AWS, CrowdStrike or SentinelOne, Datadog, Sumo Logic, or Splunk. * Clear verbal and written ...

Senior SOC Analyst

Great Neck, NY · On-site

$120 - $180/hr

Strong proficiency with SIEM platforms such as Splunk, Microsoft Sentinel, or Sumo Logic. * Hands‑on experience with EDR solutions such as CrowdStrike Falcon, or Microsoft Defender. * Hands‑on ...

Use Datadog, Sumo Logic, and StatsD to monitor user interaction patterns and application health, ensuring high availability for business-critical workflows. * AI-Forward Features (RAG): Deploy ...

Staff Corporate Security Engineer

Lehi, UT · On-site +1

$170K - $278K/yr

Direct hands-on experience with core enterprise platforms such as Sumo Logic, SentinelOne, Okta, and Google Workspace. * Demonstrated experience creating triage workflows, standard operating ...

$90 - $120/hr

Experience using Jira, Confluence, Datadog, Sumo Logic, JFrog, Bitbucket, GitHub Copilot, or similar operational and collaboration platforms. * Understanding of Agile methodologies and foundational ...

Direct hands-on experience with core enterprise platforms such as Sumo Logic, SentinelOne, Okta, and Google Workspace. * Demonstrated experience creating triage workflows, standard operating ...

Showing results 41-60

Sumo Logic information

See salary details

$28K

$102.6K

$198.5K

How much do sumo logic jobs pay per year?

As of Sep 6, 2026, the average yearly pay for sumo logic in the United States is $102,627.00, according to ZipRecruiter salary data. Most workers in this role earn between $55,500.00 and $140,500.00 per year, depending on experience, location, and employer.

What is Sumo Logic?

Sumo Logic is a cloud-based machine data analytics platform that helps organizations monitor, troubleshoot, and secure their applications and infrastructure. It collects and analyzes log data from various sources, providing real-time insights into operational, security, and business intelligence. Sumo Logic is widely used for log management, security information and event management (SIEM), and observability solutions for modern cloud applications. Its scalability and ease of integration make it a popular choice among DevOps, IT, and security teams.

What are some common challenges faced by Sumo Logic engineers when working with large-scale data environments?

Engineers at Sumo Logic frequently deal with the complexities of ingesting, processing, and analyzing massive volumes of log and event data. Common challenges include optimizing data pipelines for speed and efficiency, ensuring system scalability to handle spikes in data, and maintaining data security and compliance standards. Collaborating closely with product, security, and customer success teams is often necessary to troubleshoot issues and deliver high-quality solutions to enterprise clients. Continuous learning and adaptability are essential, as the landscape of cloud-native observability is always evolving.

What are the key skills and qualifications needed to thrive as a Sumo Logic engineer, and why are they important?

To thrive as a Sumo Logic Engineer, you need a solid background in IT operations, log management, and data analytics, often supported by experience in cloud platforms and a relevant degree. Familiarity with Sumo Logic's platform, scripting languages, SIEM tools, and certifications like Sumo Logic Certified Administrator are highly beneficial. Analytical thinking, problem-solving, and effective communication help you interpret data insights and collaborate with teams. These skills ensure the effective deployment, monitoring, and optimization of log analytics solutions for organizational security and performance.
More about Sumo Logic jobs

What cities are hiring for Sumo Logic jobs?

Cities with the most Sumo Logic job openings:

What states have the most Sumo Logic jobs?

States with the most job openings for Sumo Logic jobs include:

Infographic showing various Sumo Logic job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 10% Part Time, 3% Contract, and 1% Nights. Highlights an 81% Physical, 3% Hybrid, and 16% Remote job distribution, with an average salary of $102,627 per year, or $49.3 per hour.

Sr. Analyst - Security Operations

Solomon Page

Great Neck, NY • On-site

$120K - $140K/yr

Full-time

Posted 12 days ago


Key responsibilities

  • Monitor, triage, and investigate security alerts across SIEM, EDR, NDR, and cloud platforms, escalating to the SOC Lead as appropriate

  • Respond to security incidents end-to-end, including initial triage, containment, eradication, recovery, and post-incident documentation

  • Perform vulnerability scans and assessments, analyze and prioritize vulnerabilities, and track remediation efforts


Job description

Our client is seeking an experienced Senior Analyst - Security Operations to join their security team. This role will focus on security monitoring, incident response, vulnerability management, threat detection, and purple team activities. The ideal candidate will have strong hands-on experience across modern security tools and be comfortable investigating complex incidents while collaborating with IT and engineering teams.
  • Salary: $120K-$140K

Responsibilities:
Security Monitoring & Incident Response
  • Monitor, triage, and investigate security alerts across SIEM, EDR, NDR, and cloud platforms, escalating to the SOC Lead as appropriate.
  • Respond to security incidents end-to-end, including initial triage, containment, eradication, recovery, and post-incident documentation.
  • Execute and help maintain incident response playbooks and runbooks, identifying gaps and recommending improvements.
  • Conduct root cause analysis following incidents and contribute findings to post-incident reviews.
  • Produce clear, accurate incident reports for both technical and non-technical audiences.
  • Participate in an on-call rotation and respond to high-severity incidents outside of business hours when required.

Vulnerability Management
  • Perform vulnerability scans and assessments using tools such as Tenable, Qualys, or Rapid7 on both scheduled and ad-hoc bases.
  • Analyze and prioritize vulnerabilities using CVSS scores, threat intelligence, and asset criticality to guide remediation efforts.
  • Track and follow up on remediation progress with IT and engineering teams, escalating stalled items as needed.
  • Contribute to vulnerability reporting, including trends, patch compliance rates, and risk reduction metrics.
  • Stay current on newly disclosed CVEs and exploit trends and advise on risk-based prioritization.

Purple Teaming & Threat Detection
  • Participate in purple team exercises alongside red team operators to validate detection and response capabilities.
  • Map adversary techniques to the MITRE ATT&CK framework and use exercise findings to identify detection gaps.
  • Write and tune SIEM detection rules, correlation queries, and alerts based on adversary TTPs and purple team outcomes.
  • Conduct threat hunting exercises using hypothesis-driven and ATT&CK-aligned methodologies to identify undetected threats.
  • Track emerging threat actor activity and incorporate relevant TTPs into detection logic and hunting campaigns.

Security Operations & Collaboration
  • Analyze logs from endpoints, firewalls, proxies, cloud platforms, and identity systems.
  • Enrich investigations with threat intelligence, including IOCs, and correlate activity across multiple data sources.
  • Collaborate with IT and engineering teams to tune security controls, reduce false positives, and improve signal quality.
  • Maintain accurate SOC documentation, including runbooks, knowledge base articles, and escalation procedures.
  • Support compliance activities such as SOC 2, ISO 27001, and NIST CSF by providing evidence and participating in audits as required.
  • Mentor junior analysts by sharing knowledge and providing guidance on investigations and tool usage, without formal management responsibility.

Required Qualifications:
  • 5+ years of hands-on experience in a SOC, security operations, or incident response role.
  • Strong proficiency with SIEM platforms such as Splunk, Microsoft Sentinel, or Sumo Logic.
  • Hands-on experience with EDR solutions such as CrowdStrike Falcon or Microsoft Defender.
  • Hands-on experience configuring conditional access policies in Entra or another identity platform.
  • Hands-on experience configuring DLP policies in Microsoft Purview or another platform.
  • Demonstrated experience triaging and responding to a significant volume of security alerts and incidents.
  • Working knowledge of vulnerability management tools and processes, including scanning, prioritization, and remediation tracking.
  • Solid understanding of network protocols and fundamentals, including TCP/IP, DNS, HTTP/S, firewalls, and proxies.
  • Experience analyzing logs across endpoints, networks, cloud environments, and SaaS platforms.
  • Familiarity with the MITRE ATT&CK framework and applying it to investigations and detection engineering.
  • Scripting experience for investigation and automation tasks using Python, PowerShell, or Bash.
  • Strong analytical and problem-solving skills with excellent attention to detail.
  • Excellent written and verbal communication skills, with the ability to convey technical findings clearly to varied audiences.

Preferred Qualifications:
  • Experience participating in purple team, red team, or adversary emulation exercises.
  • Background in threat hunting using hypothesis-driven or behavior-based methodologies.
  • Exposure to SOAR platforms and security automation or workflow development.
  • Experience with cloud security telemetry and threat models across AWS, Azure, or GCP.
  • Familiarity with threat intelligence platforms or workflows such as MISP, Recorded Future, or OpenCTI.
  • Knowledge of digital forensics tools and techniques, including KAPE, Volatility, or Velociraptor.

Certifications
Required or Strongly Preferred:
  • Required: CISSP - Certified Information Systems Security Professional
  • Preferred: GIAC GCIH - GIAC Certified Incident Handler
  • Preferred: GIAC GCIA - Intrusion Analyst
  • Preferred: CEH - Certified Ethical Hacker
  • Preferred: CompTIA CySA+ or Security+
  • Preferred: OSCP, GPEN, or similar offensive/detection-focused certification
  • Preferred: Cloud security certifications such as Microsoft SC-200, AWS Security Specialty, or equivalent
If you meet the required qualifications and are interested in this role, please apply today.
The Solomon Page Distinction
Our teams, comprised of subject matter experts, develop an interest in your preferences and goals and we act as an advisor for your career advancement. Solomon Page has an extensive network of established clients which allows us to present opportunities that are well-suited to your respective goals and needs - this specialized approach sets us apart in the industries we serve.
About Solomon Page
Founded in 1990, Solomon Page is a specialty niche provider of staffing and executive search solutions across a wide array of functions and industries. The success of Solomon Page reflects an organic growth strategy supported by a highly entrepreneurial culture. Acting as a strategic partner to our clients and candidates, we focus on providing customized solutions and building long-term relationships based on trust, respect, and the consistent delivery of excellent results. For more information and additional opportunities, visit: solomonpage.com and connect with us on Facebook , and LinkedIn .
Opportunity Awaits.
#LI-JM1